CWE-59
Improper Link Resolution Before File Access ('Link Following')
Description
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-132 · CAPEC-17 · CAPEC-35 · CAPEC-76
CVEs mapped to this weakness (1,658)
page 29 of 83| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-44258 | Hig | 0.46 | 7.1 | 0.01 | Oct 28, 2024 | This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, tvOS 18.1, visionOS 2.1. Restoring a maliciously crafted backup file may lead to modification of protected system files. | ||
| CVE-2024-38097 | Hig | 0.46 | 7.1 | 0.01 | Oct 8, 2024 | Azure Monitor Agent Elevation of Privilege Vulnerability | ||
| CVE-2024-38188 | Hig | 0.46 | 7.1 | 0.01 | Sep 10, 2024 | Azure Network Watcher VM Agent Elevation of Privilege Vulnerability | ||
| CVE-2024-38022 | Hig | 0.46 | 7.0 | 0.01 | Jul 9, 2024 | Windows Image Acquisition Elevation of Privilege Vulnerability | ||
| CVE-2024-35254 | Hig | 0.46 | 7.1 | 0.01 | Jun 11, 2024 | Azure Monitor Agent Elevation of Privilege Vulnerability | ||
| CVE-2024-5102 | Hig | 0.46 | 7.0 | 0.00 | Jun 10, 2024 | A sym-linked file accessed via the repair function in Avast Antivirus <24.2 on Windows may allow user to elevate privilege to delete arbitrary files or run processes as NT AUTHORITY\SYSTEM. The vulnerability exists within the "Repair" (settings -> troubleshooting -> repair)… | ||
| CVE-2024-30033 | Hig | 0.46 | 7.0 | 0.01 | May 14, 2024 | Windows Search Service Elevation of Privilege Vulnerability | ||
| CVE-2024-23459 | Hig | 0.46 | 7.1 | 0.00 | May 2, 2024 | An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client Connector on Mac allows a system file to be overwritten.This issue affects Zscaler Client Connector on Mac : before 3.7. | ||
| CVE-2024-21432 | Hig | 0.46 | 7.0 | 0.01 | Mar 12, 2024 | Windows Update Stack Elevation of Privilege Vulnerability | ||
| CVE-2024-0206 | Hig | 0.46 | 7.1 | 0.00 | Jan 9, 2024 | A symbolic link manipulation vulnerability in Trellix Anti-Malware Engine prior to the January 2024 release allows an authenticated local user to potentially gain an escalation of privileges. This was achieved by adding an entry to the registry under the Trellix ENS registry… | ||
| CVE-2023-36394 | Hig | 0.46 | 7.0 | 0.07 | Nov 14, 2023 | Windows Search Service Elevation of Privilege Vulnerability | ||
| CVE-2023-36046 | Hig | 0.46 | 7.1 | 0.01 | Nov 14, 2023 | Windows Authentication Denial of Service Vulnerability | ||
| CVE-2023-46654 | Hig | 0.46 | 8.1 | 0.01 | Oct 25, 2023 | Jenkins CloudBees CD Plugin 1.1.32 and earlier follows symbolic links to locations outside of the expected directory during the cleanup process of the 'CloudBees CD - Publish Artifact' post-build step, allowing attackers able to configure jobs to delete arbitrary files on the… | ||
| CVE-2023-36568 | Hig | 0.46 | 7.0 | 0.00 | Oct 10, 2023 | Microsoft Office Click-To-Run Elevation of Privilege Vulnerability | ||
| CVE-2023-36876 | Hig | 0.46 | 7.1 | 0.01 | Aug 8, 2023 | Reliability Analysis Metrics Calculation (RacTask) Elevation of Privilege Vulnerability | ||
| CVE-2023-35347 | Hig | 0.46 | 7.1 | 0.01 | Jul 11, 2023 | Microsoft Install Service Elevation of Privilege Vulnerability | ||
| CVE-2023-32050 | Hig | 0.46 | 7.0 | 0.00 | Jul 11, 2023 | Windows Installer Elevation of Privilege Vulnerability | ||
| CVE-2023-27469 | Hig | 0.46 | 7.1 | 0.00 | Jun 30, 2023 | Malwarebytes Anti-Exploit 4.4.0.220 is vulnerable to arbitrary file deletion and denial of service via an ALPC message in which FullFileNamePath lacks a '\0' character. | ||
| CVE-2023-24904 | Hig | 0.46 | 7.1 | 0.01 | May 9, 2023 | Windows Installer Elevation of Privilege Vulnerability | ||
| CVE-2022-34292 | Hig | 0.46 | 7.1 | 0.00 | Apr 27, 2023 | Docker Desktop for Windows before 4.6.0 allows attackers to overwrite any file through a symlink attack on the hyperv/create dockerBackendV2 API by controlling the DataFolder parameter for DockerDesktop.vhdx, a similar issue to CVE-2022-31647. |
- risk 0.46cvss 7.1epss 0.01
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, tvOS 18.1, visionOS 2.1. Restoring a maliciously crafted backup file may lead to modification of protected system files.
- risk 0.46cvss 7.1epss 0.01
Azure Monitor Agent Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.01
Azure Network Watcher VM Agent Elevation of Privilege Vulnerability
- risk 0.46cvss 7.0epss 0.01
Windows Image Acquisition Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.01
Azure Monitor Agent Elevation of Privilege Vulnerability
- risk 0.46cvss 7.0epss 0.00
A sym-linked file accessed via the repair function in Avast Antivirus <24.2 on Windows may allow user to elevate privilege to delete arbitrary files or run processes as NT AUTHORITY\SYSTEM. The vulnerability exists within the "Repair" (settings -> troubleshooting -> repair)…
- risk 0.46cvss 7.0epss 0.01
Windows Search Service Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.00
An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client Connector on Mac allows a system file to be overwritten.This issue affects Zscaler Client Connector on Mac : before 3.7.
- risk 0.46cvss 7.0epss 0.01
Windows Update Stack Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.00
A symbolic link manipulation vulnerability in Trellix Anti-Malware Engine prior to the January 2024 release allows an authenticated local user to potentially gain an escalation of privileges. This was achieved by adding an entry to the registry under the Trellix ENS registry…
- risk 0.46cvss 7.0epss 0.07
Windows Search Service Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.01
Windows Authentication Denial of Service Vulnerability
- risk 0.46cvss 8.1epss 0.01
Jenkins CloudBees CD Plugin 1.1.32 and earlier follows symbolic links to locations outside of the expected directory during the cleanup process of the 'CloudBees CD - Publish Artifact' post-build step, allowing attackers able to configure jobs to delete arbitrary files on the…
- risk 0.46cvss 7.0epss 0.00
Microsoft Office Click-To-Run Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.01
Reliability Analysis Metrics Calculation (RacTask) Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.01
Microsoft Install Service Elevation of Privilege Vulnerability
- risk 0.46cvss 7.0epss 0.00
Windows Installer Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.00
Malwarebytes Anti-Exploit 4.4.0.220 is vulnerable to arbitrary file deletion and denial of service via an ALPC message in which FullFileNamePath lacks a '\0' character.
- risk 0.46cvss 7.1epss 0.01
Windows Installer Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.00
Docker Desktop for Windows before 4.6.0 allows attackers to overwrite any file through a symlink attack on the hyperv/create dockerBackendV2 API by controlling the DataFolder parameter for DockerDesktop.vhdx, a similar issue to CVE-2022-31647.